Privacy Policy
Last updated 28 August 2026
This policy explains what Proposolve collects, why, and who else touches it. It is written to describe what the product actually does rather than to cover every theoretical case.
Who we are
Proposolve is operated by GO Smartex. For any privacy question, or to exercise the rights below, contact privacy@proposolve.com.
What we collect
Your account. Name, email address, and password (stored hashed by our authentication provider — we never see it). Optionally your company name, logo, brand colours and fonts.
Content you create. Proposals, templates, text, spreadsheets and formulas, and any images or files you upload. This often includes information about your clients — their name, company, email and job title — which you enter as merge fields.
Proposal engagement. When someone opens a proposal you sent, we record the time, their approximate location derived from IP address, how long the page was open, which sections were viewed, and — where you enabled an email gate — the email address they entered.
Billing. Your plan, subscription status and billing period. Card details go directly to Stripe; they never reach our servers.
Product usage. Aggregate page analytics with no cookies and no personal identifiers, and error reports when something breaks. Error reports are configured to exclude request bodies and headers.
Why we collect it
To run your account and provide the service (performance of our contract with you); to take payment (contract); to keep the service secure and prevent abuse, including rate-limiting proposal access attempts (legitimate interests); and to understand which features are used so we can improve them (legitimate interests).
We do not sell personal data, and we do not use your content or your clients’ data to train AI models.
Who processes it
We use a small number of subprocessors. Each receives only what it needs:
- Supabase — database, authentication and file storage.
- Vercel — application hosting and cookieless analytics.
- Stripe — payment processing and card data.
- Resend — sending proposal and account emails.
- Anthropic — the AI features. When you use the spreadsheet copilot or the AI import styling, the relevant spreadsheet contents are sent to Anthropic to generate a response. This data is not used to train their models.
- Sentry — error reporting, when enabled.
Unsplash, Pexels and Giphy are called only when you search their libraries, and receive your search term.
Your compatibility checks stay on your machine
The Excel compatibility checker reads your workbook entirely in your browser. The file is never uploaded. We record only the names of unsupported functions, so we know what to build next — never cell contents, values, sheet names or file names.
How long we keep it
Account and content data is kept while your account is open. Delete your account in Settings and it is removed, along with your proposals, templates and uploaded files. Records we are legally required to retain — invoices and payment records — are kept by Stripe for the period tax law requires.
Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to object to processing, and to complain to a supervisory authority. Account deletion is self-serve in Settings; for anything else, email us and we will respond within 30 days.
If you use Proposolve to send proposals, you are the controller of your clients’ data and we are your processor. You are responsible for having a lawful basis to enter their details.
International transfers
Our providers operate in the United States and the European Union, so your data may be processed outside your country. Transfers rely on the safeguards those providers offer, including Standard Contractual Clauses where applicable.
Security
Data is encrypted in transit and at rest by our infrastructure providers. Access to proposals is enforced at the database level, and proposals you protect with an email gate or access code are checked on the server before any content is sent to the browser. No system is perfectly secure, but we design so that a mistake in one layer does not expose your data.
Changes
If we change this policy materially we will update the date above and notify account holders by email.